StudyToCert

All certifications / CISM / Lessons

ISACA Certified Information Security Manager (CISM) 2026 exam content outline · Domain 2: Information security risk management

Emerging risk and the threat landscape

▶ Watch the overview video

Last reviewed September 30, 2026 · Leer en español

The threat landscape is the changing set of threat actors, their motives and the techniques they use. An information security manager must keep an informed view of it, because a risk assessment that was accurate last year may be wrong today. New attack methods, new technologies adopted by the business and changes in geopolitics all shift the likelihood of different events. Emerging risk is a new or changing risk whose likelihood or impact is not yet well understood, which means estimates will be uncertain and need regular revisiting.

Free account

Keep reading for free

Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 6 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.

Sign up free Log in

Study CISM for free
A week-by-week plan with every lesson, quizzes, checkpoint tests, a practice exam and hands-on labs.
Open the CISM study plan